ArcSight Analytics provides robust capabilities for automatic log parsing, sorting, and monitoring. It enhances data integration, alerts, and scalability, offering deep insights into log correlation and threat analysis.

| Product | Mindshare (%) |
|---|---|
| ArcSight Analytics | 1.9% |
| Exabeam | 8.7% |
| IBM Security QRadar | 7.0% |
| Other | 82.4% |
| Type | Title | Date | |
|---|---|---|---|
| Category | User Entity Behavior Analytics (UEBA) | May 6, 2026 | Download |
| Product | Reviews, tips, and advice from real users | May 6, 2026 | Download |
| Comparison | ArcSight Analytics vs Exabeam | May 6, 2026 | Download |
| Comparison | ArcSight Analytics vs IBM Security QRadar | May 6, 2026 | Download |
| Comparison | ArcSight Analytics vs One Identity Safeguard | May 6, 2026 | Download |
| Title | Rating | Mindshare | Recommending | |
|---|---|---|---|---|
| IBM Security QRadar | 4.0 | 7.0% | 90% | 217 interviewsAdd to research |
| Varonis Platform | 4.2 | 4.5% | 94% | 18 interviewsAdd to research |
| Company Size | Count |
|---|---|
| Small Business | 4 |
| Midsize Enterprise | 3 |
| Large Enterprise | 6 |
| Company Size | Count |
|---|---|
| Small Business | 21 |
| Midsize Enterprise | 13 |
| Large Enterprise | 19 |
ArcSight Analytics serves as a comprehensive platform for Security Information and Event Management, supporting functions such as security event correlation, threat monitoring, compliance, and log management. Users can take advantage of its ability to consolidate data on intuitive dashboards and utilize its numerous connectors and prebuilt roles. It facilitates detailed behavioral analytics and anomaly detection along with extensive user connection information. While it is recognized for its stability and scalability, areas like the integration with third-party apps, advanced analytics, and the application of machine learning could benefit from further development. Enhancing dashboards, providing better customer support, and refining the pricing structure are also necessary to meet expectations.
What are the key features of ArcSight Analytics?ArcSight Analytics is extensively applied in industries with substantial IT structures, aiding in the evaluation of large-scale networks and devices. Its capabilities are particularly valuable in authentication monitoring and network analysis, addressing Data Center Interconnect requirements and enhancing security protocols across different sectors.
ArcSight Analytics was previously known as ArcSight User Behavior Analytics, ArcSight UBA.
| Author info | Rating | Review Summary |
|---|---|---|
| Consultant at a tech vendor with 10,001+ employees | 3.0 | I use this solution for logging and analysis. While it's stable and easy to implement, its difficult usability and significantly declining support after acquisition lower my rating to six out of ten. |
| CEO at Kapstone Technological Services LLP | 4.5 | ArcSight Analytics provides deep network insight and threat analysis, offering valuable reports for understanding vulnerabilities and potential attacks. It is scalable and easily deployable, effectively helping to assess the likelihood of threats based on CVS scores. |
| Delivery Head at a consultancy with 10,001+ employees | 3.5 | I find ArcSight Analytics stable with good connectors and community support, though it relies on FlexConnectors. It's expensive, needs better compatible connectors and user behavior analytics. My salesperson offers great support. |
| Cyber Security Team Leader at a tech services company with 501-1,000 employees | 3.0 | I find ArcSight's correlation engine good and it's scalable. However, its features are stale, queries are very slow, and stability is average. I'd recommend using another solution for queries. |
| Principle Architect at Tech Mahindra | 4.0 | I value ArcSight for its behavioral analytics and anomaly detection, noting good stability and scalability. However, its complex nature, requiring skilled users, and poor visualization are areas for improvement, although support is decent. |
| Cyber Security Consultant at raf | 3.0 | I use ArcSight for network monitoring, valuing its log monitoring. However, it's not user-friendly, lacks good third-party integration, and I wouldn't recommend it, preferring Splunk or QRadar. |
| Director at Techpace | 3.5 | I find its log correlation excellent for security events. However, reporting, dashboards, and the ecosystem need improvement. Customer service is lacking. It's expensive and moderately complex to set up, best for complex use cases. |
| Senior Systems Engineer at a tech services company with 501-1,000 employees | No summary available |